Position Summary: As a Senior Consultant at Deloitte Consulting, you will support end-to-end vulnerability management engagements, assisting in the identification, assessment, prioritization, and remediation tracking of security vulnerabilities across client environments. You will work alongside senior practitioners and cross-functional teams to deliver high-quality outcomes, leveraging both traditional VM tooling and emerging Anthropic / Agentic AI capabilities to accelerate threat detection and response.
Key Responsibilities: Lead vulnerability assessment engagements across on-premises, cloud, and hybrid environments, managing the lifecycle from policy design through remediation verification. Serve as a primary client contact, align strategies to business risk priorities and regulatory requirements, and produce risk-based dashboards. Design and implement Anthropic Claude-powered automation workflows for vulnerability ingestion, triage, prioritization, and remediation guidance. Integrate VM platforms with SIEM, CSPM, and SOAR systems to automate workflows and reduce manual effort. Define operating procedures, SLAs, and quality metrics; mentor junior members; and coordinate remediation tracking across stakeholder groups.
Team & Location: Cyber Operate teams manage clients' critical cyber assets via managed services or partnerships. Services include Cyber-as-a-Service, Managed Application Security, and MXDR. Locations: Bengaluru, Hyderabad, Pune, or Chennai. Shift Timings: 2:00 PM to 11:00 PM IST, with flexibility required for client expectations, time zone coverage, and on-call support.
Required Qualifications
5-10 years cybersecurity experience
4+ years vulnerability management experience
Expertise in VM platforms (RiskSense, ServiceNow VR, Tenable, Qualys, Rapid7, Microsoft Defender, Prisma Cloud)
Proficiency in Anthropic Claude API integration, prompt engineering, and function calling
Knowledge of risk scoring frameworks (CVSS v3/v4, EPSS, CISA KEV)
Scripting for API integrations and data pipeline automation
Hands-on experience with SIEM, CSPM, SOAR, and Kubernetes/container scanning
Preferred Qualifications
Experience building RAG pipelines with Claude/LLMs for vulnerability KBs
AI/ML anomaly detection for predictive risk scoring